Menu path: Setup > Security > Active Directory / Kerberos

  • Enable

    ☑ The Kerberos basic configuration will be carried out.

    ☐ The Kerberos basic configuration will not be carried out. (default)

  • Default domain (Fully Qualified Domain Name): This value must match the Windows domain on which the logon is to take place, e.g. EXAMPLE.COM.

    The value must be entered in upper case letters.
  • DNS lookup for domain controller

    ☑ In order to find the key distribution centers (KDCs, domain controllers) and other servers for a realm, DNS SRV records are used if they are not explicitly indicated. (default)

    ☐ The key distribution centers entered under Setup > Security > Active Directory/Kerberos > Domain 1 ... Domain 4 will be used.

  • DNS lookup for domain

    ☑ In order to determine the Kerberos realm of a host, DNS TXT records are used. (default)

    ☐ The details under Setup > Security > Active Directory / Kerberos > Domain Realm Mapping are used.

  • Obtain addressless tickets

    ☑ The first Kerberos ticket is addressless. This may be necessary if the client is located behind an NAT device (Network Address Translation). (default)

_____